juaromu / wazuh-misp
☆15Updated last year
Alternatives and similar repositories for wazuh-misp:
Users that are interested in wazuh-misp are comparing it to the libraries listed below
- ☆33Updated last year
- Personal scripts☆12Updated 4 months ago
- ☆16Updated 3 years ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Convert Sigma rules to Wazuh rules☆59Updated 9 months ago
- ☆18Updated 3 years ago
- Wazuh integration TheHive☆33Updated last year
- Tools for Wazuh by Juan C. Tello☆14Updated 3 years ago
- Repo for Automations and other solutions for Elastic SIEM/Security.☆18Updated 3 years ago
- ☆17Updated 2 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆62Updated 3 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆68Updated last year
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆38Updated 8 months ago
- The Project can be used to integrate QRadar with MISP Threat Sharing Platform☆39Updated 2 years ago
- Import CrowdStrike Threat Intelligence into your instance of MISP☆42Updated 2 months ago
- Useful scripts for those administering Wazuh☆78Updated this week
- Threat Hunting with ELK Workshop (InfoSecWorld 2017)☆66Updated 7 years ago
- CrowdStrike Falcon Queries For Advanced Threat Detection☆15Updated 2 years ago
- Incident Response Network Tools☆24Updated 3 years ago
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆33Updated 4 years ago
- Repository for SPEED SIEM Use Case Framework☆52Updated 4 years ago
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆26Updated 4 years ago
- ☆31Updated 3 years ago
- Workflows for Shuffle☆21Updated 2 years ago
- A collection of tips for using MISP.☆74Updated last month
- SOC Workflow App helps Security Analysts and Threat Hunters explore suspicious events, look into raw events arriving at the Elastic Stack…☆93Updated 2 years ago
- ☆54Updated 3 years ago
- Terraform scripts for deploying OpenCTI to AWS, Azure, and GCP☆31Updated 9 months ago
- Integrate your Wazuh-Manager or Graylog with the SOCFortress Threat Intel Service☆28Updated 3 months ago
- A list of resources to build a information security team.☆13Updated 3 years ago